首页> 外文会议>Annual ISA POWID symposium >Securing Critical Control Systems in the Power Industry
【24h】

Securing Critical Control Systems in the Power Industry

机译:保护电力行业的关键控制系统

获取原文
获取外文期刊封面目录资料

摘要

It has become almost a weekly occurrence to read about some new cyber security attack, whether it is intended to obtain private information or to deliberately bring down a particular company’s network. However, cyber security attacks are just not limited to IT networks. With the advent of Stuxnet, cyber security attacks on control and SCADA systems have become a reality. The threat of cyber security attacks on our nation’s critical control systems infrastructure, which includes our power generation facilities, presents yet another challenge to utility directors and staff. We will discuss what the federal government is doing about cyber security and the impact of the latest Presidential Executive Order. As part of the growing need for cyber security, the types of malwares and viruses that have been designed to attack SCADA systems (such as Stuxnet and Flame) will be examined. To address the need to secure our critical control systems, the paper will discuss the latest standards, regulations and guidelines that can be applied to the power industry. The discussion will focus on the NERC CIP Version 5 standards and the ISA99, Industrial Automation and Control Systems Security standards. Based on the ISA99 standards and Department of Homeland Security guidelines, there are a number of best practices that engineers can employ in designing control systems networks and end users can implement for existing systems. These include authentication and auditing, intrusion detection, and defense-in-depth strategies including firewalls and virtual private networks (VPNs). We will focus on these best practices and how they are applicable to the Version 5 NERC-CIP standards.
机译:关于一些新的网络安全攻击已经变得几乎每周一次发生,无论是旨在获取私人信息还是故意拖延特定公司的网络。但是,网络安全攻击不仅限于IT网络。随着Stuxnet的出现,网络安全攻击控制和SCADA系统已成为现实。网络安全攻击对我们国家的关键控制系统基础设施的威胁,包括我们的发电设施,对公用事业董事和员工提供了另一个挑战。我们将讨论联邦政府正在做什么对网络安全以及最新总统执行令的影响。作为越来越多的网络安全需求的一部分,将研究旨在攻击SCADA系统(如Stuxnet和Flame)的棕褐色和病毒的类型。为了解决保护我们的关键控制系统的需要,本文将讨论可应用于电力行业的最新标准,法规和指导方针。讨论将专注于NERC CIP 5型标准和ISA99,工业自动化和控制系统安全标准。基于ISA99标准和家庭安全指南部,有许多最佳实践该工程师可以在设计控制系统网络和最终用户来实现现有系统中的最佳实践。这些包括身份验证和审核,入侵检测和防御深度策略,包括防火墙和虚拟专用网络(VPN)。我们将专注于这些最佳实践以及它们如何适用于第5版NERC-CIP标准。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号